Notification Configuration

To configure notifications on anti-virus network events

1.Select the Administration item in the main menu of the Control Center. In the opened window, select Notifications configuration in the control menu.

2.Notifications are configured separately for each Control Center administrator. The name of the administrator whom notifications are displayed is given in the Administrator who receives notifications field. To configure notifications for another administrator, click icon-new-edit and select the administrator in the opened window.

3.At initial setup, one default notifications blocks (profiles) is added for the main admin administrator. If the administrator notification list is empty, click Add notification in the Notification list section.

4.To enable notifications sending, set the switch on the left of the notifications block header to the corresponding position:

icon-notification-enabled—notifications sending for this block is enabled.

icon-notification-desabled—notifications of this block are not sent.

5.In this section, you can create several notifications blocks (profiles), e.g., for the different sending methods. To add one more block, click icon-item-add on the right of the notifications block settings. At the bottom of the page, one more notifications block will be added. Configuration of different notifications blocks as their templates texts is performed independently.

6.In the Title field, specify the name of added notifications block. This name is used, e.g. in configuration of the Create statistic report in the Dr.Web Server schedule. Further, to edit the header, click it and type necessary name. If you have more than one notification blocks, when you click the header text, the drop-down list with headers of existing notifications blocks will be prompted.

7.To configure notifications sending, select necessary type for notifications sending from the Notifications send method drop-down list:

Dr.Web Agent—send notifications via the Agent protocol.

Web console—send notifications for viewing in the Web console.

Email—send notifications on email.

Push-notifications—send push notifications to Dr.Web Mobile Control Center. This option is available in the Notifications send method drop-down list only after Dr.Web Mobile Control Center has been connected to this Dr.Web Server.

SNMP—send notifications via the SNMP protocol.

Settings description for each type of notifications sending is given in this section below.

8.In the notifications list, set the flags next to those notifications that will be sent according to the send method of current notifications block.

9.For the Dr.Web Server notifications sending, the predefined set of text messages is provided.

info

Description of predefined notifications and their parameters is given in the Appendices document, in Appendix D2. The Parameters of Notification Templates.

To configure concrete notification, do the following:

a)To edit notifications settings, click icon-merge-settings Switch to notification editing mode on the section header.

b)To change notifications settings, click a notification you want to edit. Notification template will be opened. If necessary, edit the text of notification to send. In the notification text you can use template variables (in braces). To add variables, use drop-down lists on the message header. When a message is being generated, the system replaces template variables with a certain text, which depends upon its current parameters. The list of available variables is given in the Appendices document, in p. Appendix D2. The Parameters of Notification Templates.

c)For email notifications, you are provided to add arbitrary user-defined fields in the Headers additional section, in the template editor for each notification (see step b)). Headers must be formed according to the RFC 822, RFC 2822 standards and must not match with fields defined in the email standards. Particularly, the RFC 822 standard guarantees that specification does not contain headers started with X-, thus it is recommended to set the names in the following format: Х-<header-name>. For example: X-Template-Language: English.

d)For notifications from the Station subsection, you can set the list of stations on the events on which notifications will be send. In the template editing window, in the Groups of monitored stations tree, select groups of stations to monitor events and send corresponding notifications. To select several groups, use ctrl or shift.

e)After making all necessary changes, click icon-merge-settings Exit notification editing mode on the section header.

info

For the SNMP send method, notification template texts are set at the side of SNMP receiver (management station in RFC 1067 term). Via the Control Center in the Station subsection, you can specify only the list of stations on the events on which notifications will be sent.

10.Click Save to apply all specified changes.

Notifications via the Agent Protocol

info

Notifications via the Agent protocol can be sent to Dr.Web Agents for Windows only.

For notifications via the Agent protocol, specify the following parameters:

In the Resend by Dr.Web Server section, specify the settings for notifications resends performed by Dr.Web Server when failed to send a message:

Number—the number of retries performed by Dr.Web Server when failed to send a message. Default is 10.

Time-out—period in seconds after which Dr.Web Server repeats the attempt to send a message. Default is 300 seconds.

Station—identifier of a station to which notifications must be send. You can view station identifier in the stations properties.

Send test message—send the test message according to the specified settings of notification system.

Notifications Displayed in the Web Console

For notifications displayed in the Web console, specify the following parameters:

In the Resend by Dr.Web Server section, specify the settings for notifications resends performed by Dr.Web Server when failed to send a message:

Number—the number of retries performed by Dr.Web Server when failed to send a message. Default is 10.

Time-out—period in seconds after which Dr.Web Server repeats the attempt to send a message. Default is 300 seconds.

Notification storing time—time period for storing a notification starting from its receiving. 1 day is by default. After specified period, notification is marked as outdated and deleted according to the Purge outdated messages task in the Dr.Web Server schedule settings.

For notifications that received by this sending method, you can specify unlimited storing time in the Web Console Notifications section.

Send test message—send the test message according to the specified settings of notification system.

Notifications on Email

For notifications on email, specify the following parameters:

In the Resend by Dr.Web Server section, specify the settings for notifications resends performed by Dr.Web Server when failed to send a message:

Number—the number of retries performed by Dr.Web Server when failed to send a message. Default is 10.

Time-out—period in seconds after which Dr.Web Server repeats the attempt to send a message. Default is 300 seconds.

Recipient email addresses—email addresses of notifications receivers. Only one email address of a receiver per each field. To add one more receiver field, click icon-item-add. To remove the field, click icon-item-remove.

info

Parameters of email sending are configured in the Administration menu, in the Dr.Web Server Configuration section, on the Network tab, on the Email internal tab.

Send test message—send the test message according to the specified settings of notification system.

Push notifications

For push notifications which are sent to Mobile Control Center, specify the following parameters:

In the Resend by Dr.Web Server section, specify the settings for notifications resends performed by Dr.Web Server when failed to send a message:

Number—the number of retries performed by Dr.Web Server when failed to send a message. Default is 10.

Time-out—period in seconds after which Dr.Web Server repeats the attempt to send a message. Default is 300 seconds.

Send test message—send the test message according to the specified settings of notification system.

Notifications via the SNMP Protocol

For notifications via the SNMP protocol, specify the following parameters:

In the Resend by Dr.Web Server section, you can specify parameters of Dr.Web Server's notification retries if notification sending fails:

Number—the number of times Dr.Web Server retries to send a notification, if the sending fails. Default is 10.

Time-out—the period in seconds after which Dr.Web Server retries to send a notification. Default is 300 seconds.

In the Resend by SNMP subsystem section, you can specify parameters of the SNMP subsystem's notification retries if notification sending fails:

Number—the number of times the SNMP subsystem retries to send a notification, if the sending fails. Default is 5.

Time-out—the period in seconds after which SNMP subsystem retries to send a notification. Default is 5 seconds.

Receiver—entity that receives SNMP requests. For example, IP address or DNS name. You can enter only one receiver per field. To add another receiver field, click icon-item-add. To remove a field, click icon-item-remove.

Sender—entity that sends SNMP requests. For example, IP address or DNS name (the one DNS server will be able to recognize). An empty value is used by default.

Community—SNMP community or context. Default is public.

Send test message—send a test notification based on the specified settings.

info

To get description of OID during the SNMP trap parsing, you can use the MIB provided with Dr.Web Server. The DRWEB-ESUITE-NOTIFICATIONS-MIB.txt and DRWEB-MIB.txt files are located in the etc subdirectory of the Dr.Web Server installation directory.